This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in focus, and describes in detail the steps involved in detecting and exploiting each kind of security weakness found within a variety of applications such as online banking, e-commerce and other web applications.
The topics covered include bypassing login mechanisms, injecting code, exploiting logic flaws and compromising other users. Because every web application is different, attacking them entails bringing to bear various general principles, techniques and experience in an imaginative way. The most successful hackers go beyond this, and find ways to automate their bespoke attacks. This handbook describes a proven methodology that combines the virtues of human intelligence and computerized brute force, often with devastating results.
The authors are professional penetration testers who have been involved in web application security for nearly a decade. They have presented training courses at the Black Hat security conferences throughout the world. Under the alias "PortSwigger", Dafydd developed the popular Burp Suite of web application hack tools.
恩,總的來說是handbook裏麵不錯的書籍。
評分##hacker:深入理解某件事物運行機製的人。 跟為瞭某種齷齪目的,使用簡單工具的人完全是兩碼迴事。
評分 評分恩,總的來說是handbook裏麵不錯的書籍。
評分恩,總的來說是handbook裏麵不錯的書籍。
評分##hacker:深入理解某件事物運行機製的人。 跟為瞭某種齷齪目的,使用簡單工具的人完全是兩碼迴事。
評分 評分 評分##hacker:深入理解某件事物運行機製的人。 跟為瞭某種齷齪目的,使用簡單工具的人完全是兩碼迴事。
本站所有内容均为互联网搜索引擎提供的公开搜索信息,本站不存储任何数据与内容,任何内容与数据均与本站无关,如有需要请联系相关搜索引擎包括但不限于百度,google,bing,sogou 等
© 2025 book.tinynews.org All Rights Reserved. 静思书屋 版权所有